Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products

DSA-2020-147: Dell Server Platform Security Advisory for the 2020.1 Intel Platform Updates (June 2020) - Intel SSD

Summary: DSA-2020-147: Dell Server Platform Security Advisory for the 2020.1 Intel Platform Updates (June 2020) - Intel SSD - CVE-2020-0527

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

DSA ID: DSA-2020-147

CVE Identifier: CVE-2020-0527

Severity: High

Severity Rating: CVSSv3 Base Score: See NVD (http://nvd.nist.gov/ This hyperlink is taking you to a website outside of Dell Technologies.) for individual scores for each CVE
                        
Affected products:
Dell EMC Servers (see Resolution section below for complete list of affected products)

Summary
Dell Servers require a security update to address Intel vulnerabilities. 

Details
Updates are available to address the following security vulnerabilities.

Intel-SA-00266 This hyperlink is taking you to a website outside of Dell Technologies.: 2020.1 IPU -  Intel SSD Advisory

  • CVE-2020-0527

Customers should also review their OS vendor’s Security Advisory for information, to ensure appropriate vulnerability identification and patch/configuration measures to be used in conjunction with the updates provided by Dell for the most effective mitigation.

For more information about any of the Common Vulnerabilities and Exposures (CVEs) mentioned here, consult the National Vulnerability Database (NVD) at http://nvd.nist.gov/home.cfm This hyperlink is taking you to a website outside of Dell Technologies.. To search for a particular CVE, use the database’s search utility at http://web.nvd.nist.gov/view/vuln/search This hyperlink is taking you to a website outside of Dell Technologies..

Resolution
The following is a list of impacted products and expected release dates. Dell recommends all customers update at the earliest opportunity.

We encourage customers to review Intel’s Security Advisory for information, including appropriate identification and mitigation measures.
Please visit the Drivers & Downloads site for updates on the applicable products. The following list of impacted products with released BIOS updates are linked. To learn more, visit the Dell Knowledge Base article Update a Dell PowerEdge Driver or Firmware Directly from the OS (Windows and Linux), and download the update for your Dell computer.

Customers may use one of the options in How to Subscribe to receive Dell Driver and Firmware Update notifications to be notified and download driver, BIOS, and firmware updates automatically once available.

Dell Server Products Affected

Product

FW Update Version (or greater)

Release Date / Expected Release Date
(MM/DD/YYYY)

Dell Express Flash NVDMe P4510/P4610 PCIe SSD VDV1DP24 02-11-2021
DS3-S4510 / DS3-S4610 Series 2.5" SATA DL65 10-07-2019
DS3-S4510 Series M.2 SATA DL6P 04-21-2020
DC-S4500 / DC-S4600 Series 2.5" SATA DL5C 02-15-2020

 

SLN321779_en_US__1icon NOTE: After following the links above, be sure to check for the latest versions of firmware for your drive model, if they are available.



Legal Information
Read and use the information in this Dell Security Advisory to help with avoiding a situation that might arise from the problems described herein. If you have any questions regarding this advisory, contact Dell Technical Support (https://www.dell.com/support/contents/category/contact-information). Dell distributes Dell Security Advisories, in order to bring to the attention of users of the affected Dell EMC products, important security information. Dell recommends that all users determine the applicability of this information to their individual situations and take appropriate action. The information set forth herein is provided "as is" without warranty of any kind. Dell disclaims all warranties, either express or implied, including the warranties of merchantability, fitness for a particular purpose, title, and non-infringement. In no event, shall Dell or its suppliers, be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages, even if Dell or its suppliers have been advised of the possibility of such damages. Some states do not allow the exclusion or limitation of liability for consequential or incidental damages, so the foregoing limitation may not apply.

Cause

  See above

Resolution

  See above

Affected Products

Hyper-converged Systems, VxRail, XC Series Appliances, Dell EMC Microsoft Storage Spaces Direct Ready Nodes, PowerFlex Appliance, NX Series, Dell EMC XC Series XC6420 Appliance, Dell EMC XC Core 6420 System, Dell EMC XC Series XC940 Appliance , Dell EMC XC Core XC940 System, Storage Spaces Direct R440 Ready Node, OEMR R230, OEMR R240, OEMR R330, OEMR R340, OEMR R440, OEMR R540, OEMR R640, OEMR XL R640, OEMR R740, OEMR XL R740, OEMR R740xd, OEMR XL R740xd, OEMR R740xd2, OEMR R840, OEMR R940, OEMR R940xa, OEMR T130, OEMR T140, OEMR T330, OEMR T340, OEMR T440, OEMR T640, OEMR XL T640, OEMR XL R230, OEMR XL R240, OEMR XL R330, OEMR XL R340, PowerEdge C6420, PowerEdge FC640, PowerEdge M640, PowerEdge M640 (for PE VRTX), PowerEdge MX840C, PowerEdge R540, PowerEdge R640, PowerEdge T340, PowerEdge T640, VxFlex Ready Node R740xd, Dell EMC vSAN C6420 Ready Node, Dell EMC vSAN R640 Ready Node, Dell EMC vSAN R740xd Ready Node, PowerFlex appliance R740XD, PowerFlex appliance R840 ...
Article Properties
Article Number: 000177610
Article Type: Solution
Last Modified: 08 Nov 2024
Version:  7
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.